๐Ÿ” CVE Alert

CVE-2025-31453

UNKNOWN 0.0

WordPress YouTube SimpleGallery plugin <= 2.0.6 - Cross Site Scripting (XSS) Vulnerability

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Stian Andreassen YouTube SimpleGallery youtube-simplegallery allows Stored XSS.This issue affects YouTube SimpleGallery: from n/a through <= 2.0.6.

CWE CWE-79
Vendor stian andreassen
Product youtube simplegallery
Published Mar 28, 2025
Last Updated Apr 1, 2026
Stay Ahead of the Next One

Get instant alerts for stian andreassen youtube simplegallery

Be the first to know when new unknown vulnerabilities affecting stian andreassen youtube simplegallery are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Stian Andreassen / YouTube SimpleGallery
0 โ‰ค 2.0.6

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
patchstack.com: https://patchstack.com/database/Wordpress/Plugin/youtube-simplegallery/vulnerability/wordpress-youtube-simplegallery-2-0-6-cross-site-scripting-xss-vulnerability?_s_id=cve

Credits

Muhammad Yudha - DJ | Patchstack Bug Bounty Program